WordPress Penetration Testing
Conduct automated security assessments of WordPress sites using WPScan, enumeration techniques, and vulnerability scanning for themes, plugins, and users.
Discover reusable agent skills, browse implementation details, and find the right skill for your workflow.
92 skills found
Conduct automated security assessments of WordPress sites using WPScan, enumeration techniques, and vulnerability scanning for themes, plugins, and users.
Implement secure backend authentication (JWT, OAuth, Sessions) and authorization (RBAC, ABAC) patterns, including password hashing, MFA, and security best practices.
Performs end-to-end OT/ICS threat modeling using Microsoft TMT exports and model files, mapping threats to MITRE ATT&CK for ICS, CWE, and CVSS v4.0 with automated risk-based prioritization.
Automate SAST configuration and security scanning. Supports Semgrep, SonarQube, and CodeQL for DevSecOps, quality gate management, and vulnerability detection.
Perform automated security audits, bug detection, and code quality assessments on local branch diffs using a structured, checklist-driven verification process.
Implement production-grade Kubernetes security using NetworkPolicy, RBAC, Pod Security Standards, and OPA Gatekeeper policies.
Perform comprehensive code reviews with a focus on security vulnerabilities, performance optimization, maintainability, and code correctness.
Detects timing side-channel vulnerabilities in cryptographic code through static and dynamic analysis across multiple programming languages.
Parses and processes SARIF files from static analysis tools. Enables aggregation, deduplication, filtering, and CI/CD integration of scan results.
A suite of professional tools for auditing, evaluating, chunking, and scaffolding production-ready RAG pipelines within Claude Code.
Implement secure session-based authentication in FastAPI with Argon2 hashing, database-backed sessions, and OAuth2 provider integration.
Find similar vulnerabilities and bugs across codebases using pattern-based analysis. Use when hunting bug variants, building CodeQL/Semgrep queries, or performing systematic code audits.